Back to All Attacks
Attack Details
Attack Date:
May 9, 2022
Employee Impersonation Payroll Diversion BEC Attack
Initial Email Content
Subject
New Direct Deposit Update
Body
Hello
Just a quick notice to inform you that I would like to change my direct deposit information as I have changed my bank lately, please advise .
Regards,
[Impersonated Employee Name]
Malicious Artifacts
Additional Indicators of Compromise
Type
Description
No items found.
Attack Description
This text-based BEC attack impersonates an employee using a spoofed email address and a free webmail account to divert payroll deposits to a fraudulent account.
Analysis Overview
Tactic
Spoofed Email Address
Free Webmail Account
Goal
Payroll Diversion
Impersonated Party
Employee - Other
Vector
Text-based
Theme
No items found.
Language